Bugzilla – Bug 1222131
VUL-0: CVE-2024-3024: tcpreplay: heap-based buffer overflow
Last modified: 2024-03-28 13:17:43 UTC
A vulnerability was found in appneta tcpreplay up to 4.4.4. It has been classified as problematic. This affects the function get_layer4_v6 of the file /tcpreplay/src/common/get.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-258333 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-3024 https://www.cve.org/CVERecord?id=CVE-2024-3024 https://docs.google.com/document/d/1wCIrViAJwGsO5afPBLLjRhO5RClsoUo3J9q1psLs84s/edit?usp=sharing https://drive.google.com/file/d/1zV9MSkfYLIrdtK3yczy1qbsJr_yN2fwH/view https://vuldb.com/?ctiid.258333 https://vuldb.com/?id.258333 https://vuldb.com/?submit.297866 https://bugzilla.redhat.com/show_bug.cgi?id=2271990